<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <link>https://www.infosecurity-magazine.com/news/</link>
    <copyright>Copyright © 2026 Reed Exhibitions Ltd. All Rights Reserved.</copyright>
    <item>
      <title>North Korean Hackers Use Fake Coding Tasks to Steal Crypto</title>
      <link>https://www.infosecurity-magazine.com/news/north-korean-hackers-developers/</link>
      <description>North Korean actor UNK_DeadDrop targeted developers with fake coding tasks to steal crypto</description>
      <pubDate>Mon, 08 Jun 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/north-korean-hackers-developers/</guid>
    </item>
    <item>
      <title>OpenAI Unveils ChatGPT Account Security Controls</title>
      <link>https://www.infosecurity-magazine.com/news/chatgpt-lockdown-mode-active/</link>
      <description>OpenAI brings Lockdown Mode and Active Sessions to ChatGPT to curb prompt injection data theft</description>
      <pubDate>Mon, 08 Jun 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chatgpt-lockdown-mode-active/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Prompt Injection Remains Unsolved, OWASP Researcher Warns</title>
      <link>https://www.infosecurity-magazine.com/news/infosec-europe-prompt-injection/</link>
      <description>At Infosecurity Europe 2026, OWASP’s Ariel Fogel warned that prompt injection remains an “unresolved problem” within generative AI architecture</description>
      <pubDate>Mon, 08 Jun 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosec-europe-prompt-injection/</guid>
    </item>
    <item>
      <title>Two-Thirds of Open Source Community Unaware of Cyber Resilience Act</title>
      <link>https://www.infosecurity-magazine.com/news/open-source-unaware-cyber/</link>
      <description />
      <pubDate>Mon, 08 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/open-source-unaware-cyber/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: How DSIT Protects Thousands of UK Orgs from Cyber Vulnerabilities</title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-dsit-cyber/</link>
      <description>The Department of Science, Innovation and Technology details how a combination of hands-on human advice and technology systems keeps government agencies safe</description>
      <pubDate>Mon, 08 Jun 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-dsit-cyber/</guid>
    </item>
    <item>
      <title>Meta AI Bug Exposes Over 20,000 Instagram Accounts</title>
      <link>https://www.infosecurity-magazine.com/news/over-20000-instagram-accounts/</link>
      <description>Meta confirms an AI tool vulnerability led to unauthorized access to Instagram accounts after a failure in email verification during password reset</description>
      <pubDate>Mon, 08 Jun 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/over-20000-instagram-accounts/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Practical Lessons From Lloyds' Agentic AI Security Playbook</title>
      <link>https://www.infosecurity-magazine.com/news/lloyds-agentic-ai-security-playbook/</link>
      <description>Lloyds Banking Group shared its approach for securing agentic AI workflows, with a mix of hands on experimentation and cross functional governance</description>
      <pubDate>Fri, 05 Jun 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/lloyds-agentic-ai-security-playbook/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: OWASP Introduces Agentic AI Security Maturity Framework</title>
      <link>https://www.infosecurity-magazine.com/news/owasp-agentic-ai-security-maturity/</link>
      <description>The OWASP agentic AI security framework helps organizations assess governance maturity vs adoption and adjust governance as needed</description>
      <pubDate>Fri, 05 Jun 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/owasp-agentic-ai-security-maturity/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era</title>
      <link>https://www.infosecurity-magazine.com/news/ai-coding-tools-security-agentic/</link>
      <description>Ox Security field CTO, Boaz Barzel, makes the case for vibe security to tackle AI agent coding risks</description>
      <pubDate>Fri, 05 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-coding-tools-security-agentic/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn</title>
      <link>https://www.infosecurity-magazine.com/news/reactive-security-failing/</link>
      <description>A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus</description>
      <pubDate>Fri, 05 Jun 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/reactive-security-failing/</guid>
    </item>
    <item>
      <title>Everest Forms Pro Vulnerability Allows Remote Code Execution on WordPress Sites</title>
      <link>https://www.infosecurity-magazine.com/news/everest-forms-pro-rce-actively/</link>
      <description>Critical Everest Forms Pro RCE flaw exploited to create rogue WordPress admin accounts</description>
      <pubDate>Thu, 04 Jun 2026 16:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/everest-forms-pro-rce-actively/</guid>
    </item>
    <item>
      <title>Chinese-Speaking Actor TA4922 Widens Its Global Reach</title>
      <link>https://www.infosecurity-magazine.com/news/ta4922-global-expansion/</link>
      <description>Newly named Chinese-speaking actor TA4922 expands from East Asia into Europe and Africa</description>
      <pubDate>Thu, 04 Jun 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ta4922-global-expansion/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI Adoption Creates New Opportunities for Attackers to Distribute Malware, Microsoft Warns </title>
      <link>https://www.infosecurity-magazine.com/news/attackers-ai-adoption-malware/</link>
      <description>Microsoft Detection and Response Team (DART) details how it has uncovered malicious AI applications as cyber criminals manipulate organizations adopting AI tools</description>
      <pubDate>Thu, 04 Jun 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attackers-ai-adoption-malware/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Mythos Outperforms GPT5.5 on Google Chrome Vulnerability Exploits, Says New Benchmark</title>
      <link>https://www.infosecurity-magazine.com/news/mythos-gpt-chrome-exploits/</link>
      <description>A Bugcrowd researcher has unveiled ExploitBench, an independent benchmark of AI models for vulnerability exploitation</description>
      <pubDate>Thu, 04 Jun 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mythos-gpt-chrome-exploits/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: How Proton Fights Against Cybercriminals Using Its Services</title>
      <link>https://www.infosecurity-magazine.com/news/how-proton-fights-against/</link>
      <description>Proton uses machine learning models to detect abuse of its services – especially email addresses used by cybercriminals</description>
      <pubDate>Thu, 04 Jun 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/how-proton-fights-against/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: How Businesses Can Prepare for a Cybersecurity Crisis with Effective Plans</title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-cybersecurity/</link>
      <description>Cybersecurity and business leaders with experience of dealing with major incidents from within the NCSC and at JLR detail what you need to prioritize if your organization is hit by a cyber-attack</description>
      <pubDate>Thu, 04 Jun 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-cybersecurity/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Ukraine’s Experience Highlights the Need for Preparation and Resilience in Cybersecurity</title>
      <link>https://www.infosecurity-magazine.com/news/resilience-perseverance-ukraine/</link>
      <description>Former Ukrainian foreign minister, Dmytro Kuleba, urges Infosecurity Europe attendees to fight the good fight</description>
      <pubDate>Thu, 04 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/resilience-perseverance-ukraine/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Raise Security Concerns with Procurement Now, Because Quantum Can’t Wait </title>
      <link>https://www.infosecurity-magazine.com/news/raise-security-procurement-quantum/</link>
      <description>Forescout VP of security intelligence, Rik Ferguson, warns that Q-day is fast approaching</description>
      <pubDate>Thu, 04 Jun 2026 07:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/raise-security-procurement-quantum/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Vulnerability Management Innovator Konvu Wins Cyber Startup Award</title>
      <link>https://www.infosecurity-magazine.com/news/konvu-wins-cyber-startup-award/</link>
      <description>
Inaugural Infosecurity Europe Cyber Startup Award Winner Impresses Panel with Ability Help Prioritize Vulnerabilities in AI era</description>
      <pubDate>Wed, 03 Jun 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/konvu-wins-cyber-startup-award/</guid>
    </item>
    <item>
      <title>Trump Signs Order Inviting Voluntary Review of Frontier AI Models</title>
      <link>https://www.infosecurity-magazine.com/news/trump-eo-voluntary-frontier-ai/</link>
      <description>Trump's executive order invites voluntary pre-release review of frontier AI models</description>
      <pubDate>Wed, 03 Jun 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trump-eo-voluntary-frontier-ai/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: How to Get Boards to Prioritize Cyber Risk Quantification</title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-board-cyber/</link>
      <description>Cybersecurity leaders major companies discuss how they got support from the board on cyber risk</description>
      <pubDate>Wed, 03 Jun 2026 10:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-board-cyber/</guid>
    </item>
    <item>
      <title>Anthropic Expands Mythos Access to 150 More Organizations</title>
      <link>https://www.infosecurity-magazine.com/news/anthropic-glasswing-expansion/</link>
      <description>Anthropic widens Project Glasswing access to 150 more firms as patching becomes the bottleneck</description>
      <pubDate>Wed, 03 Jun 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/anthropic-glasswing-expansion/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Patch Responsibility Remains Up for Grabs as AI Unearths Decades of Flaws</title>
      <link>https://www.infosecurity-magazine.com/news/patch-responsibility-ai-infosec/</link>
      <description>The emergence of AI models capable to autonomously find and fix vulnerabilities at scale is having a significant impact on patching management, experts say</description>
      <pubDate>Wed, 03 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/patch-responsibility-ai-infosec/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Execs Must Treat Cyber Threats as Statecraft, ISACA Expert Say</title>
      <link>https://www.infosecurity-magazine.com/news/execs-cisos-must-treat-cyber/</link>
      <description>Private firms are being targeted by nation-state groups for reasons beyond finance, argued ISACA’s Bharat Thakrar</description>
      <pubDate>Wed, 03 Jun 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/execs-cisos-must-treat-cyber/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI-Powered Cybercrime Tools Surge on Dark Web</title>
      <link>https://www.infosecurity-magazine.com/news/cybercrime-ai-tools-surge-3800/</link>
      <description>Halcyon’s Cynthia Kaiser lifts the lid on the dark web market for AI cybercrime tools</description>
      <pubDate>Wed, 03 Jun 2026 07:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybercrime-ai-tools-surge-3800/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: NCSC Urges Immediate Action to Boost Resilience as Uncertainty Persists</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-resilience-certainty-is-never/</link>
      <description>NCSC director of operations, Paul Chichester, says it’s time to future-proof cybersecurity today</description>
      <pubDate>Tue, 02 Jun 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-resilience-certainty-is-never/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Cybersecurity Teams Which Don’t Leverage AI are "Doomed to Fail"</title>
      <link>https://www.infosecurity-magazine.com/news/cybersecurity-teams-doomed-to-fail/</link>
      <description>Humans still need to be part of cyber defense, but refusing to deploy AI is no longer optional against AI-enhanced cyber threats, warns Dataminr’s Joe Slowik</description>
      <pubDate>Tue, 02 Jun 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybersecurity-teams-doomed-to-fail/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Bayer Reinvents Security Awareness Training to Counter AI Threats</title>
      <link>https://www.infosecurity-magazine.com/news/bayer-reinvents-security-awareness/</link>
      <description>Bayer’s security awareness training now focuses on psychological approaches rather than technical methods for detecting social engineering</description>
      <pubDate>Tue, 02 Jun 2026 13:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/bayer-reinvents-security-awareness/</guid>
    </item>
    <item>
      <title>Threat Actor Uses AI to Build EDR Evasion Tools</title>
      <link>https://www.infosecurity-magazine.com/news/ai-edr-evasion-tooling/</link>
      <description>A threat actor used AI coding tools to build and test EDR evasion malware, Sophos finds</description>
      <pubDate>Tue, 02 Jun 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-edr-evasion-tooling/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: UK Firms Prioritize AI Threat Preparedness as Cyber Risks Evolve</title>
      <link>https://www.infosecurity-magazine.com/news/uk-firms-prioritize-ai-threat/</link>
      <description>UK organizations are prioritizing AI-driven cybersecurity as 43% cite AI-powered attacks as their top risk, prompting significant investment in advanced threat defense</description>
      <pubDate>Tue, 02 Jun 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-firms-prioritize-ai-threat/</guid>
    </item>
    <item>
      <title>Attackers Hijack Red Hat npm Scope to Steal Cloud Secrets</title>
      <link>https://www.infosecurity-magazine.com/news/red-hat-npm-scope-backdoored/</link>
      <description>Attackers backdoored 32 packages in Red Hat's official npm scope to steal cloud and CI secrets</description>
      <pubDate>Tue, 02 Jun 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/red-hat-npm-scope-backdoored/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Business Leaders Lack Understanding of Threat Intelligence, Study Warns</title>
      <link>https://www.infosecurity-magazine.com/news/business-leaders-struggle-threat/</link>
      <description>A new Silobreaker and SANS Institute paper examines the ‘Intelligence-Stakeholder Gap’ and what organizations must do to achieve business buy-in on threat intelligence</description>
      <pubDate>Tue, 02 Jun 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/business-leaders-struggle-threat/</guid>
    </item>
    <item>
      <title>Critical Flowise Flaw Gives Attackers Full Server Control</title>
      <link>https://www.infosecurity-magazine.com/news/flowise-mcp-rce-poc/</link>
      <description>Obsidian publishes PoC for a 1-click Flowise RCE that can fully compromise self-hosted servers</description>
      <pubDate>Mon, 01 Jun 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/flowise-mcp-rce-poc/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Tabletop Exercise to Test How CISOs Respond to Major Supermarket Cyber-Attack </title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-semperis/</link>
      <description>Semperis is set to bring ‘Enter the War Room: A Tabletop Experience’ to Infosecurity Europe to help cybersecurity leaders prepare to face real incidents</description>
      <pubDate>Mon, 01 Jun 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-semperis/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI SOCs Will Still Need SOC Analysts, Security Vendors Say</title>
      <link>https://www.infosecurity-magazine.com/news/ai-soc-still-need-analysts/</link>
      <description>Top cybersecurity vendors said AI won't replace entry-level – only routine ticket-taking and triage</description>
      <pubDate>Mon, 01 Jun 2026 11:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-soc-still-need-analysts/</guid>
    </item>
    <item>
      <title>FSB Group Gamaredon Hides Worm in Windows Data Streams</title>
      <link>https://www.infosecurity-magazine.com/news/gamaredon-worm-ntfs-data-streams/</link>
      <description>FSB-linked Gamaredon concealed a fileless worm in NTFS data streams to spy on Ukraine targets</description>
      <pubDate>Mon, 01 Jun 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gamaredon-worm-ntfs-data-streams/</guid>
    </item>
    <item>
      <title>Attackers Abuse Shared Content for ChatGPT Phishing Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/attackers-shared-content-chatgpt/</link>
      <description>Push Security says threat actors are delivering malware hosted on chatgpt.com/s/ domain </description>
      <pubDate>Mon, 01 Jun 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attackers-shared-content-chatgpt/</guid>
    </item>
    <item>
      <title>Palo Alto Warns High-Severity Bug Is Being Actively Exploited</title>
      <link>https://www.infosecurity-magazine.com/news/palo-alto-highseverity-bug/</link>
      <description>A vulnerability in Palo Alto Networks’ PAN-OS software is being exploited in attacks</description>
      <pubDate>Mon, 01 Jun 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/palo-alto-highseverity-bug/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: OWASP Forms New Agentic Research Council</title>
      <link>https://www.infosecurity-magazine.com/news/owasp-new-agentic-research-council/</link>
      <description>OWASP’s new Agentic Research Council will aim to connect academic work to operational realities on agentic AI security</description>
      <pubDate>Mon, 01 Jun 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/owasp-new-agentic-research-council/</guid>
    </item>
    <item>
      <title>Silent Ransom Group Uses In-Person IT Impersonation to Breach Systems</title>
      <link>https://www.infosecurity-magazine.com/news/silent-ransom-group-it/</link>
      <description>Threat actors from the Silent Ransom Group, aka Luna Moth, are escalating attacks by impersonating IT staff in phone calls and even showing up in person to gain direct access to victim systems</description>
      <pubDate>Fri, 29 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/silent-ransom-group-it/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: CyCOS Project Expands to Support UK SMEs as CIISec Takes Over</title>
      <link>https://www.infosecurity-magazine.com/news/cycos-expands-uk-smes-ciisec/</link>
      <description>From a research-driven pilot, the Cybersecurity Communities of Support (CyCOS) is about to be handed over to CIISec</description>
      <pubDate>Fri, 29 May 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cycos-expands-uk-smes-ciisec/</guid>
    </item>
    <item>
      <title>Chinese Hackers Exploit Iran War to Target Maritime and Energy Companies</title>
      <link>https://www.infosecurity-magazine.com/news/chinese-hackers-exploit-iran-war/</link>
      <description>ESET’s 2026 APT Activity Report suggests China-backed APTs are using instability in the region to target victims, as well as continuing activity against organizations around the globe</description>
      <pubDate>Fri, 29 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-hackers-exploit-iran-war/</guid>
    </item>
    <item>
      <title>AI-Generated npm Malware Leaks Its Own GitHub Token</title>
      <link>https://www.infosecurity-magazine.com/news/ai-npm-malware-leaks-github-token/</link>
      <description>Sloppy AI-generated npm infostealer leaked its own GitHub token, exposing the operator</description>
      <pubDate>Fri, 29 May 2026 08:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-npm-malware-leaks-github-token/</guid>
    </item>
    <item>
      <title>Attackers Move Past Typosquatting to Realistic Package Impersonation</title>
      <link>https://www.infosecurity-magazine.com/news/attackers-beyond-typosquatting/</link>
      <description>Most malicious open source packages now mimic real code rather than rely on typosquatting</description>
      <pubDate>Thu, 28 May 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attackers-beyond-typosquatting/</guid>
    </item>
    <item>
      <title>Microsoft Condemns "Uncoordinated" Zero Day Disclosures</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-uncoordinated-zeroday/</link>
      <description>Microsoft warned the disclosure of several unpatched vulnerabilities without notice has put “customers at unnecessary risk”</description>
      <pubDate>Thu, 28 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-uncoordinated-zeroday/</guid>
    </item>
    <item>
      <title>New Threat Actor Jinx-0164 Targets Crypto Developers on macOS</title>
      <link>https://www.infosecurity-magazine.com/news/jinx-0164-crypto-developers-macos/</link>
      <description>New actor Jinx-0164 hit crypto developers with fake recruiter lures and macOS malware</description>
      <pubDate>Thu, 28 May 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/jinx-0164-crypto-developers-macos/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Cybersecurity Staff Prefer CISOs With Real Attack Response Experience, Study Reveals </title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-isc2/</link>
      <description>ISC2 survey of cybersecurity professionals suggests that staff want their information security leaders to have experienced reacting to a significant cyber incident</description>
      <pubDate>Thu, 28 May 2026 10:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-isc2/</guid>
    </item>
    <item>
      <title>GCHQ Chief Urges Action as AI Reshapes Cyber Threats</title>
      <link>https://www.infosecurity-magazine.com/news/gchq-keast-butler-cyber-action-ai/</link>
      <description>GCHQ director urges urgent business cyber action as AI and quantum reshape the threat</description>
      <pubDate>Thu, 28 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gchq-keast-butler-cyber-action-ai/</guid>
    </item>
    <item>
      <title>CrowdStrike, Google Take Down Glassworm Botnet</title>
      <link>https://www.infosecurity-magazine.com/news/crowdstrike-google-takedown/</link>
      <description>Operators of the malicious Glassworm botnet have been targeting software developers since at least early 2025</description>
      <pubDate>Wed, 27 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/crowdstrike-google-takedown/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Why Burnout in Cybersecurity Demands Risk-Based Response</title>
      <link>https://www.infosecurity-magazine.com/news/why-burnout-cybersecurity-risk/</link>
      <description>Cybermindz warns that cybersecurity burnout is a growing risk, urging organizations to move beyond wellness initiatives and adopt a measurable, risk-based approach to workforce stress</description>
      <pubDate>Wed, 27 May 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/why-burnout-cybersecurity-risk/</guid>
    </item>
    <item>
      <title>All Major LLMs Exposed to Multi-Turn Manipulation, Warn Researchers</title>
      <link>https://www.infosecurity-magazine.com/news/all-major-llms-exposed-to-multi/</link>
      <description />
      <pubDate>Wed, 27 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/all-major-llms-exposed-to-multi/</guid>
    </item>
    <item>
      <title>Thousands of Fake FIFA Domains Target World Cup Fans</title>
      <link>https://www.infosecurity-magazine.com/news/ghost-stadium-fifa-world-cup-fraud/</link>
      <description>Group-IB uncovered Ghost Stadium phishing and 4300 fake FIFA World Cup domains targeting fans</description>
      <pubDate>Wed, 27 May 2026 11:28:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ghost-stadium-fifa-world-cup-fraud/</guid>
    </item>
    <item>
      <title>68% of UK Firms Plan to Increase Cyber Spending as AI Risks Rise</title>
      <link>https://www.infosecurity-magazine.com/news/uk-firms-cyber-spending-ai-risks/</link>
      <description>UK firms plan higher cyber spending as AI adoption raises security concerns</description>
      <pubDate>Wed, 27 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-firms-cyber-spending-ai-risks/</guid>
    </item>
    <item>
      <title>PureLogs Variant Steals Data via Purchase Order Lures</title>
      <link>https://www.infosecurity-magazine.com/news/purelogs-phishing-purchase-order/</link>
      <description>FortiGuard Labs detailed a PureLogs campaign using JavaScript, PowerShell and process hollowing</description>
      <pubDate>Wed, 27 May 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/purelogs-phishing-purchase-order/</guid>
    </item>
    <item>
      <title>Chinese Threat Actors Ditch Static Phishing Pages for Live Credential Interception</title>
      <link>https://www.infosecurity-magazine.com/news/chinese-phishing-live-credential/</link>
      <description>Almost all organizations impersonated by Chinese phishing platforms are non-Chinese entities, suggesting operators deliberately avoid domestic targets </description>
      <pubDate>Tue, 26 May 2026 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-phishing-live-credential/</guid>
    </item>
    <item>
      <title>BTMOB Android RAT Spreads Through No-Code Builder Tooling</title>
      <link>https://www.infosecurity-magazine.com/news/btmob-android-rat-maas-builder/</link>
      <description>BTMOB Android RAT sold as a service with a no-code builder for fast, regional phishing lures</description>
      <pubDate>Tue, 26 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/btmob-android-rat-maas-builder/</guid>
    </item>
    <item>
      <title>India's CERT-In Sets 12-Hour Patch Deadline for Exposed Flaws</title>
      <link>https://www.infosecurity-magazine.com/news/cert-in-12-hour-patch-deadline-ai/</link>
      <description>CERT-In urges 12-hour patching of exposed flaws as AI compresses exploitation timelines</description>
      <pubDate>Tue, 26 May 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cert-in-12-hour-patch-deadline-ai/</guid>
    </item>
    <item>
      <title>Iran-Linked Hackers Target US Aviation with Phishing and SEO Poisoning Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/iranian-hackers-us-aviation/</link>
      <description>Iran's Nimbus Manticore pushes AI-built MiniFast backdoor via phishing and SEO poisoning</description>
      <pubDate>Tue, 26 May 2026 09:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iranian-hackers-us-aviation/</guid>
    </item>
    <item>
      <title>FBI Warns 'Kali365' Phishing Kit Hijacks Microsoft 365 OAuth Tokens</title>
      <link>https://www.infosecurity-magazine.com/news/fbi-kali365-phishing-kit-m365/</link>
      <description>The Kali365 phishing-as-a-service platform lowers the barrier of entry for cybercriminals, said the FBI</description>
      <pubDate>Mon, 25 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fbi-kali365-phishing-kit-m365/</guid>
    </item>
    <item>
      <title>Fake Streams, Counterfeit Merch and Other Scams: How Fraudsters Target F1 Fans</title>
      <link>https://www.infosecurity-magazine.com/news/how-fraudsters-target-f1-fans/</link>
      <description>From fake F1 streams to counterfeit merch, fraudsters are exploiting fans online and the Bitdefender Cybersecurity Grand Prix Fan Threat Index details how</description>
      <pubDate>Mon, 25 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/how-fraudsters-target-f1-fans/</guid>
    </item>
    <item>
      <title>Fake Gemini and Claude Code Sites Spread Infostealers Through SEO Poisoning</title>
      <link>https://www.infosecurity-magazine.com/news/gemini-claude-infostealers-seo/</link>
      <description>The infostealer payload in this campaign collect a vast amount of data, from collaboration authentication keys to cryptocurrency wallets</description>
      <pubDate>Fri, 22 May 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gemini-claude-infostealers-seo/</guid>
    </item>
    <item>
      <title>Apple Blocked $2.2bn in App Store Fraud in the Last Year</title>
      <link>https://www.infosecurity-magazine.com/news/apple-blocked-2bn-app-store-fraud/</link>
      <description>Total figure for fraudulent transactions Apple has blocked since 2020 now stands at over $11bn</description>
      <pubDate>Fri, 22 May 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apple-blocked-2bn-app-store-fraud/</guid>
    </item>
    <item>
      <title>Cybercriminal VPN Dismantled in Europol Crackdown</title>
      <link>https://www.infosecurity-magazine.com/news/first-vpn-takedown-europol/</link>
      <description>First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol</description>
      <pubDate>Thu, 21 May 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/first-vpn-takedown-europol/</guid>
    </item>
    <item>
      <title>GitHub Breach Traced to Malicious 'Nx Console' VS Code Extension</title>
      <link>https://www.infosecurity-magazine.com/news/github-breach-nx-console-vs-code/</link>
      <description>A threat actor compromised an Nx developer and posed as a legitimate maintainer to publish a malicious extension on Visual Studio Marketplace</description>
      <pubDate>Thu, 21 May 2026 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/github-breach-nx-console-vs-code/</guid>
    </item>
    <item>
      <title>Three-Quarters of Firms Knowingly Ship Vulnerable Code</title>
      <link>https://www.infosecurity-magazine.com/news/threequarters-knowingly-ship/</link>
      <description>AI risks threaten to permeate supply chains through unvetted code and unaudited suppliers</description>
      <pubDate>Thu, 21 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/threequarters-knowingly-ship/</guid>
    </item>
    <item>
      <title>Nine-Year-Old Linux Kernel Flaw Leaks SSH Keys and Password Hashes</title>
      <link>https://www.infosecurity-magazine.com/news/linux-kernel-ptrace-flaw-ssh-keys/</link>
      <description>Qualys finds nine-year-old Linux ptrace flaw exposing SSH keys and password hashes locally</description>
      <pubDate>Thu, 21 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/linux-kernel-ptrace-flaw-ssh-keys/</guid>
    </item>
    <item>
      <title>Grafana Labs Says Code Breach Stemmed from TanStack Attack</title>
      <link>https://www.infosecurity-magazine.com/news/grafana-labs-code-breach-tanstack/</link>
      <description>Grafana Labs has confirmed a recent data breach was caused by the TanStack supply chain attack</description>
      <pubDate>Thu, 21 May 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/grafana-labs-code-breach-tanstack/</guid>
    </item>
    <item>
      <title>Android Malware Campaign Used Hundreds of Fake Apps to Silently Charge Users</title>
      <link>https://www.infosecurity-magazine.com/news/android-carrier-billing-fraud-four/</link>
      <description>Premium Deception campaign uses 250 Android apps to silently sign victims up to paid services</description>
      <pubDate>Wed, 20 May 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/android-carrier-billing-fraud-four/</guid>
    </item>
    <item>
      <title>Mini Shai-Hulud Hits Hundreds of npm Packages in AntV Ecosystem</title>
      <link>https://www.infosecurity-magazine.com/news/antv-npm-mini-shai-hulud-largest/</link>
      <description>Mini Shai-Hulud worm hits Alibaba AntV ecosystem in largest npm supply chain wave to date</description>
      <pubDate>Wed, 20 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/antv-npm-mini-shai-hulud-largest/</guid>
    </item>
    <item>
      <title>China-Linked Webworm APT Evolves Tactics, Expands to European Targets </title>
      <link>https://www.infosecurity-magazine.com/news/webworm-apt-evolves-tactics/</link>
      <description>China-linked Webworm APT expands beyond Asia, targeting European government organizations and refining its cyber espionage tactics, according to ESET research</description>
      <pubDate>Wed, 20 May 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/webworm-apt-evolves-tactics/</guid>
    </item>
    <item>
      <title>GitHub Confirms Breach of Internal Repositories Via Malicious VS Code Extension</title>
      <link>https://www.infosecurity-magazine.com/news/github-confirms-breach-vs-code/</link>
      <description>The prolific threat group TeamPCP has claimed a hack into GitHub’s internal repositories</description>
      <pubDate>Wed, 20 May 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/github-confirms-breach-vs-code/</guid>
    </item>
    <item>
      <title>Researchers Warn CypherLoc Scareware Has Targeted Millions of Users </title>
      <link>https://www.infosecurity-magazine.com/news/researchers-cypherloc-scareware/</link>
      <description>Barracuda reveals new CypherLoc scareware has featured in nearly three million attacks</description>
      <pubDate>Wed, 20 May 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-cypherloc-scareware/</guid>
    </item>
    <item>
      <title>Verizon DBIR: Vulnerability Exploits Overtake Credentials as Top Access Vector</title>
      <link>https://www.infosecurity-magazine.com/news/verizon-dbir-exploits-top-access/</link>
      <description>Verizon DBIR finds 31% of data breaches began with software flaws last year</description>
      <pubDate>Wed, 20 May 2026 08:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/verizon-dbir-exploits-top-access/</guid>
    </item>
    <item>
      <title>Microsoft Takes Down Fox Tempest for Providing Ransomware-Enabling Signing Tool</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-takes-down-fox-tempest/</link>
      <description>Microsoft’s Digital Crimes Unit has taken down the infrastructure of Fox Tempest, a prolific cybercrime-enabling threat group</description>
      <pubDate>Tue, 19 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-takes-down-fox-tempest/</guid>
    </item>
    <item>
      <title>AI Raises the Bar on Vulnerability Awareness and Secure-by-Design Software</title>
      <link>https://www.infosecurity-magazine.com/news/ai-raises-vulnerability-awareness/</link>
      <description>AI-powered vulnerability scanning leaves no excuse for unpatched bugs as the EU Cyber Resilience Act pushes firms toward secure-by-design software</description>
      <pubDate>Tue, 19 May 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-raises-vulnerability-awareness/</guid>
    </item>
    <item>
      <title>Agentic AI Accelerates Software Builds and Mobile App Attacks </title>
      <link>https://www.infosecurity-magazine.com/news/agentic-ai-accelerates-software/</link>
      <description>Digital.ai data reveals 87% of apps were attacked over the past year</description>
      <pubDate>Tue, 19 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/agentic-ai-accelerates-software/</guid>
    </item>
    <item>
      <title>Grafana Labs Confirms Hackers Stole Source Code</title>
      <link>https://www.infosecurity-magazine.com/news/grafana-labs-confirms-hackers/</link>
      <description>Open source tool maker Grafana says hackers stole codebase via GitHub breach</description>
      <pubDate>Tue, 19 May 2026 09:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/grafana-labs-confirms-hackers/</guid>
    </item>
    <item>
      <title>Hackers Bypass Security Tools to Target Users Directly</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-bypass-security-tools/</link>
      <description>Bridewell report calls out emergence of “fix-style” attacks</description>
      <pubDate>Tue, 19 May 2026 08:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-bypass-security-tools/</guid>
    </item>
    <item>
      <title>Interpol Launches Sweeping Cybercrime Crackdown in MENA Region</title>
      <link>https://www.infosecurity-magazine.com/news/interpol-cybercrime-crackdown-mena/</link>
      <description>Over 200 people were arrested in an anti-cybercrime operation that spanned 13 countries across the Middle East and North Africa</description>
      <pubDate>Mon, 18 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/interpol-cybercrime-crackdown-mena/</guid>
    </item>
    <item>
      <title>The Infosecurity Europe Cyber Startup Competition: Meet the Finalists </title>
      <link>https://www.infosecurity-magazine.com/news/infosec-europe-cyber-startup/</link>
      <description>New for 2026, the Infosecurity Europe Startup competition will see five finalists pitch their ideas in front of a live audience, including senior industry leaders, investors and buyers</description>
      <pubDate>Mon, 18 May 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosec-europe-cyber-startup/</guid>
    </item>
    <item>
      <title>NCSC Publishes Guidance on Securing Agentic AI Use</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-publishes-guidance-securing/</link>
      <description>The UK’s National Cyber Security Centre is helping organizations to understand agentic AI security risks</description>
      <pubDate>Mon, 18 May 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-publishes-guidance-securing/</guid>
    </item>
    <item>
      <title>Security Researchers Find 47 Zero-Days at Pwn2Own Berlin</title>
      <link>https://www.infosecurity-magazine.com/news/security-researchers-47-zerodays/</link>
      <description>The research community was awarded $1.3m as it found dozens of novel vulnerabilities at Pwn2Own Berlin</description>
      <pubDate>Mon, 18 May 2026 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/security-researchers-47-zerodays/</guid>
    </item>
    <item>
      <title>Bank of England, FCA and Treasury Raise Alarm Over Frontier AI</title>
      <link>https://www.infosecurity-magazine.com/news/bank-england-fca-treasury-alarm/</link>
      <description>The UK’s financial authorities have set expectations for the sector on cybersecurity and operational resilience</description>
      <pubDate>Mon, 18 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/bank-england-fca-treasury-alarm/</guid>
    </item>
    <item>
      <title>Gremlin Stealer Evolves into Modular Threat with Advanced Evasion Capabilities </title>
      <link>https://www.infosecurity-magazine.com/news/gremlin-stealer-evolves-into/</link>
      <description>A new Gremlin stealer variant has evolved into a modular toolkit with advanced evasion and data theft capabilities, according to new Unit 42 research </description>
      <pubDate>Fri, 15 May 2026 14:19:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gremlin-stealer-evolves-into/</guid>
    </item>
    <item>
      <title>Microsoft Reports Severe Zero-Day Flaw in On-Prem Exchange Servers</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-zeroday-exchange-servers/</link>
      <description>The zero-day vulnerability affects on-premises installations for all versions of Exchange Server 2016, 2019 and Subscription Edition</description>
      <pubDate>Fri, 15 May 2026 12:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-zeroday-exchange-servers/</guid>
    </item>
    <item>
      <title>China-Linked Hackers Deploy New TencShell Malware Against Global Manufacturer</title>
      <link>https://www.infosecurity-magazine.com/news/china-hackers-tencshell-malware/</link>
      <description>A suspected China-linked threat actor targeted the Indian branch of a global manufacturer leveraging an open source offensive toolkit</description>
      <pubDate>Fri, 15 May 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/china-hackers-tencshell-malware/</guid>
    </item>
    <item>
      <title>Mustang Panda Linked to Updated FDMTP Backdoor in Asia-Pacific Espionage Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/mustang-panda-fdmtp-backdoor-apj/</link>
      <description>Mustang Panda campaign deploys updated FDMTP backdoor against Asia-Pacific and Japan networks</description>
      <pubDate>Thu, 14 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mustang-panda-fdmtp-backdoor-apj/</guid>
    </item>
    <item>
      <title>Google Launches Android Spyware Forensics Tool for High-Risk Users</title>
      <link>https://www.infosecurity-magazine.com/news/google-launches-android-spyware/</link>
      <description>Google’s Android Advanced Protection Mode is getting a new feature allowing trusted security experts to investigate potential spyware infections</description>
      <pubDate>Thu, 14 May 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-launches-android-spyware/</guid>
    </item>
    <item>
      <title>New Fragnesia Flaw Hands Linux Local Users Root Access</title>
      <link>https://www.infosecurity-magazine.com/news/fragnesia-linux-kernel-lpe-root/</link>
      <description>New Fragnesia kernel flaw lets unprivileged local users escalate to root on Linux systems</description>
      <pubDate>Thu, 14 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fragnesia-linux-kernel-lpe-root/</guid>
    </item>
    <item>
      <title>Most Organizations Now Use AI Agents for Sensitive Security Tasks</title>
      <link>https://www.infosecurity-magazine.com/news/most-organizations-ai-agents/</link>
      <description>Semperis study finds 74% of organizations believe AI will increase attacks on identity infrastructure</description>
      <pubDate>Thu, 14 May 2026 09:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/most-organizations-ai-agents/</guid>
    </item>
    <item>
      <title>ICO Publishes Five-Step Plan to Counter Emerging AI-Powered Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/ico-steps-in-advice-handling-ai/</link>
      <description>The Information Commissioner’s Office has released new guidance on how to mitigate the risk of AI-powered attacks</description>
      <pubDate>Thu, 14 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ico-steps-in-advice-handling-ai/</guid>
    </item>
    <item>
      <title>Canvas Owner Reaches Agreement With Cybercriminals After Ransomware Attack</title>
      <link>https://www.infosecurity-magazine.com/news/canvas-cybercriminals-agreement/</link>
      <description>Instructure says it reached an agreement with ShinyHunters over the Canvas breach data</description>
      <pubDate>Wed, 13 May 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/canvas-cybercriminals-agreement/</guid>
    </item>
    <item>
      <title>Avada Builder Flaws Expose One Million WordPress Sites</title>
      <link>https://www.infosecurity-magazine.com/news/avada-builder-flaws-one-million/</link>
      <description>Avada Builder flaws allowed file read and SQL injection on one million WordPress sites</description>
      <pubDate>Wed, 13 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/avada-builder-flaws-one-million/</guid>
    </item>
    <item>
      <title>Ransomware: Over Half of CISOs Would Consider Paying Ransom to Hackers</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-over-half-cisos-would/</link>
      <description>Survey of cybersecurity leaders suggests that majority would strongly consider paying cybercriminals, if that’s what it took to help restore encrypted systems</description>
      <pubDate>Wed, 13 May 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-over-half-cisos-would/</guid>
    </item>
    <item>
      <title>Global Cyber Agencies Issue New SBOMs for AI Guidance to Tackle AI Supply Chain Risks</title>
      <link>https://www.infosecurity-magazine.com/news/new-sboms-for-ai-guidance-2026/</link>
      <description>The G7 Cybersecurity Working Group releases new SBOM for AI guidance, outlining seven key data clusters to boost transparency and security across AI supply chains</description>
      <pubDate>Wed, 13 May 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/new-sboms-for-ai-guidance-2026/</guid>
    </item>
    <item>
      <title>UK Cybersecurity Market Expands to £14.7bn with Strong Growth in AI Security Firms</title>
      <link>https://www.infosecurity-magazine.com/news/uks-cyber-sector-grows-revenue-11/</link>
      <description>UK cybersecurity sector reaches £14.7bn in revenue, driven by rapid growth in AI security firms, increased investment and rising employment across the industry</description>
      <pubDate>Wed, 13 May 2026 09:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uks-cyber-sector-grows-revenue-11/</guid>
    </item>
    <item>
      <title>Microsoft Fixes 17 Critical Flaws in May Patch Tuesday</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-17-critical-flaws-may/</link>
      <description>Microsoft has patched 120 vulnerabilities in this month’s security update round</description>
      <pubDate>Wed, 13 May 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-17-critical-flaws-may/</guid>
    </item>
    <item>
      <title>OpenAI Launches 'Daybreak' to Help Build Secure By Design Software</title>
      <link>https://www.infosecurity-magazine.com/news/openai-daybreak-secure-by-design/</link>
      <description>With Daybreak, OpenAI wants its frontier AI models to be used to deploy secure by design software from the ground up</description>
      <pubDate>Tue, 12 May 2026 15:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/openai-daybreak-secure-by-design/</guid>
    </item>
    <item>
      <title>Mini Shai-Hulud Hits TanStack npm Packages</title>
      <link>https://www.infosecurity-magazine.com/news/mini-shai-hulud-tanstack-npm/</link>
      <description>Mini Shai-Hulud compromises TanStack npm packages and spreads across PyPI</description>
      <pubDate>Tue, 12 May 2026 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mini-shai-hulud-tanstack-npm/</guid>
    </item>
    <item>
      <title>End‑to‑End Encrypted RCS Messaging Arrives Across iPhone and Android</title>
      <link>https://www.infosecurity-magazine.com/news/apple-google-rcs-end-to-end/</link>
      <description>Apple begins rolling out end-to-end encrypted RCS messaging between iPhone and Android in iOS 26.5</description>
      <pubDate>Tue, 12 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apple-google-rcs-end-to-end/</guid>
    </item>
    <item>
      <title>Attackers Combine ClickFix With PySoxy Proxying to Maintain Persistence </title>
      <link>https://www.infosecurity-magazine.com/news/clickfix-combined-pysoxy-proxying/</link>
      <description>Exploitation of open-source tools allows attackers to maintain persistent access after initial social engineering, warn ReliaQuest researchers</description>
      <pubDate>Tue, 12 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/clickfix-combined-pysoxy-proxying/</guid>
    </item>
    <item>
      <title>Malicious Hugging Face Repository Typosquats OpenAI</title>
      <link>https://www.infosecurity-magazine.com/news/malicious-hugging-face-repo/</link>
      <description>HiddenLayer reveals infostealer malware in a Hugging Face repository</description>
      <pubDate>Tue, 12 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/malicious-hugging-face-repo/</guid>
    </item>
    <item>
      <title>South Staffordshire Water Fined £1m After Data Breach</title>
      <link>https://www.infosecurity-magazine.com/news/south-staffordshire-water-fined-1m/</link>
      <description>The ICO has fined South Staffordshire Water nearly £1m for a series of data protection failings</description>
      <pubDate>Tue, 12 May 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/south-staffordshire-water-fined-1m/</guid>
    </item>
    <item>
      <title>TrickMo Variant Routes Android Trojan Traffic Through TON</title>
      <link>https://www.infosecurity-magazine.com/news/trickmo-c-ton-network-android/</link>
      <description>ThreatFabric finds new TrickMo Android banking trojan variant routing C2 through The Open Network</description>
      <pubDate>Mon, 11 May 2026 15:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trickmo-c-ton-network-android/</guid>
    </item>
    <item>
      <title>Rushed Patches Follow Broken Embargo on New Linux Kernel Vulnerabilities</title>
      <link>https://www.infosecurity-magazine.com/news/dirty-frag-linux-kernel/</link>
      <description>Two new high-severity vulnerabilities, dubbed ’Dirty Frag’ when chained, have been found in the Linux kernel, affecting most Linux distributions </description>
      <pubDate>Mon, 11 May 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/dirty-frag-linux-kernel/</guid>
    </item>
    <item>
      <title>Fake Claude Code Page Pushes PowerShell Stealer at Devs</title>
      <link>https://www.infosecurity-magazine.com/news/fake-claude-code-installer/</link>
      <description>Ontinue uncovers fake Claude Code installer pushing PowerShell stealer abusing Chrome's IElevator2</description>
      <pubDate>Mon, 11 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fake-claude-code-installer/</guid>
    </item>
    <item>
      <title>Hackers Observed Using AI to Develop Zero-Day for the First Time</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-using-ai-zero-day-first/</link>
      <description>Google Threat Intelligence Group details how cybercriminals attempted to launch a campaign based around an AI-developed Zero-Day targeting open-source software</description>
      <pubDate>Mon, 11 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-using-ai-zero-day-first/</guid>
    </item>
    <item>
      <title>US: FCC Relaxes Foreign-Made Router Ban to Allow for Security Updates</title>
      <link>https://www.infosecurity-magazine.com/news/us-fcc-relaxes-foreign-router-ban/</link>
      <description>The same extension applies to security updates shipped to US-based users of foreign-made drones</description>
      <pubDate>Mon, 11 May 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-fcc-relaxes-foreign-router-ban/</guid>
    </item>
    <item>
      <title>ShinyHunters Escalates Canvas Extortion with School by School Ransom Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/shinyhunters-escalates-canvas/</link>
      <description>ShinyHunters has escalated its Canvas extortion campaign, defacing hundreds of school login pages and threatening to leak stolen data unless institutions negotiate</description>
      <pubDate>Mon, 11 May 2026 10:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/shinyhunters-escalates-canvas/</guid>
    </item>
    <item>
      <title>Zara Data Breach Impacts Nearly 200,000 Customers</title>
      <link>https://www.infosecurity-magazine.com/news/zara-data-breach-impacts-200000/</link>
      <description>ShinyHunters gets away with emails and other data on 200,000 Zara customers</description>
      <pubDate>Mon, 11 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zara-data-breach-impacts-200000/</guid>
    </item>
    <item>
      <title>Police Shut Relaunched Crimenetwork Dark Web Marketplace</title>
      <link>https://www.infosecurity-magazine.com/news/police-shut-crimenetwork-may-2025/</link>
      <description>Spanish police have arrested the suspected administrator of German dark web marketplace Crimenetwork</description>
      <pubDate>Mon, 11 May 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/police-shut-crimenetwork-may-2025/</guid>
    </item>
    <item>
      <title>Australian Cyber Security Centre Issues Alert Over ClickFix Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/australian-cyber-security-centre/</link>
      <description>ACSC warns over a campaign targeting organizations which uses ClickFix to deliver Vidar infostealer malware</description>
      <pubDate>Fri, 08 May 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/australian-cyber-security-centre/</guid>
    </item>
    <item>
      <title>PCPJack Campaign Boots TeamPCP Off Compromised Machines</title>
      <link>https://www.infosecurity-magazine.com/news/pcpjack-campaign-boots-teampcp-off/</link>
      <description>SentinelOne believes the PCPJack campaign may be the brainchild of a former TeamPCP member</description>
      <pubDate>Fri, 08 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/pcpjack-campaign-boots-teampcp-off/</guid>
    </item>
    <item>
      <title>Legacy Security Tools Failing Data Protection, Capital One Software Report Finds</title>
      <link>https://www.infosecurity-magazine.com/news/legacy-security-tools-are-failing/</link>
      <description>Traditional network security tools are undermining data protection, with Forrester and Capital One Software research warning AI adoption is impossible without rethinking data security</description>
      <pubDate>Thu, 07 May 2026 14:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/legacy-security-tools-are-failing/</guid>
    </item>
    <item>
      <title>Cline Kanban Flaw Lets Websites Hijack AI Coding Agents</title>
      <link>https://www.infosecurity-magazine.com/news/cline-kanban-websocket-hijack-ai/</link>
      <description>Oasis Security finds critical Cline kanban WebSocket flaw exposing AI coding agents to hijack</description>
      <pubDate>Thu, 07 May 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cline-kanban-websocket-hijack-ai/</guid>
    </item>
    <item>
      <title>OpenAI and Anthropic LLMs Used in Critical Infrastructure Cyber-Attack, Warns Dragos</title>
      <link>https://www.infosecurity-magazine.com/news/llm-critical-infrastructure/</link>
      <description>Commercial AI models were used to help plan and conduct cyber-attack against operational technology of a water and drainage facility, say researchers</description>
      <pubDate>Thu, 07 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/llm-critical-infrastructure/</guid>
    </item>
    <item>
      <title>Fake Claude AI Site Drops Beagle Backdoor on Windows Users</title>
      <link>https://www.infosecurity-magazine.com/news/fake-claude-site-beagle-backdoor/</link>
      <description>Sophos finds fake Claude site spreading DonutLoader and a new Beagle backdoor via DLL sideloading</description>
      <pubDate>Thu, 07 May 2026 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fake-claude-site-beagle-backdoor/</guid>
    </item>
    <item>
      <title>Daemon Tools Developer Confirms Software Was Trojanized </title>
      <link>https://www.infosecurity-magazine.com/news/daemon-tools-confirms-software/</link>
      <description>A China-linked threat actor backdoored a version of Daemon Tools to infect thousands</description>
      <pubDate>Thu, 07 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/daemon-tools-confirms-software/</guid>
    </item>
    <item>
      <title>Researchers Spot Uptick in Use of Vercel for Phishing Campaigns</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-spot-uptick-vercel/</link>
      <description>Cofense has warned of a “significant” increase in phishing campaigns abusing Vercel platform</description>
      <pubDate>Thu, 07 May 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-spot-uptick-vercel/</guid>
    </item>
    <item>
      <title>CloudZ Malware Abuses Phone Link to Steal SMS OTPs</title>
      <link>https://www.infosecurity-magazine.com/news/cloudz-rat-pheno-phone-link-otp/</link>
      <description>Cisco Talos uncovers CloudZ RAT and Pheno plugin abusing Microsoft Phone Link to intercept SMS OTPs</description>
      <pubDate>Wed, 06 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cloudz-rat-pheno-phone-link-otp/</guid>
    </item>
    <item>
      <title>CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-ci-fortify-isolation-recovery/</link>
      <description>CISA’s CI Fortify initiative aim for critical infrastructure operators to build isolation &amp; recovery</description>
      <pubDate>Wed, 06 May 2026 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-ci-fortify-isolation-recovery/</guid>
    </item>
    <item>
      <title>Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/iran-linked-apt-chaos-ransomware/</link>
      <description>Rapid7 reveals an Iranian false flag operation masquerading as a Chaos ransomware attack</description>
      <pubDate>Wed, 06 May 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iran-linked-apt-chaos-ransomware/</guid>
    </item>
    <item>
      <title>One in Eight Workers Has Sold Their Corporate Logins</title>
      <link>https://www.infosecurity-magazine.com/news/one-eight-workers-sold-corporate/</link>
      <description>Cifas says that 13% of employees admit selling company credentials to a former colleague</description>
      <pubDate>Wed, 06 May 2026 08:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/one-eight-workers-sold-corporate/</guid>
    </item>
    <item>
      <title>Microsoft Flags Mass Phishing Campaign Using Fake Compliance Emails</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-phishing-fake-compliance/</link>
      <description>Microsoft researchers warn of a large-scale phishing campaign using fake compliance emails to steal credentials, targeting 35,000 users across 13,000 organizations worldwide</description>
      <pubDate>Tue, 05 May 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-phishing-fake-compliance/</guid>
    </item>
    <item>
      <title>North Korean APT Targets Yanbian Gamers via Trojanized Platform</title>
      <link>https://www.infosecurity-magazine.com/news/scarcruft-birdcall-android-yanbian/</link>
      <description>ESET warns that North Korean hackers compromised a Yanbian gaming site in a supply‑chain attack, trojanizing Windows and Android software to spy on users</description>
      <pubDate>Tue, 05 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/scarcruft-birdcall-android-yanbian/</guid>
    </item>
    <item>
      <title>Fake SSA Emails Drive Venomous#Helper Phishing Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/ssa-emails-venomous-helper-phishing/</link>
      <description>Venomous#Helper attackers impersonate the US Social Security Administration to deploy signed RMM software and maintain persistent access across US networks</description>
      <pubDate>Tue, 05 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ssa-emails-venomous-helper-phishing/</guid>
    </item>
    <item>
      <title>AI Adoption Outpaces Safety Policies, Leaving Organizations Exposed to Cyber Risk</title>
      <link>https://www.infosecurity-magazine.com/news/ai-adoption-outpaces-safety-policy/</link>
      <description>ISACA report warns that while AI has become the norm, many organizations are yet to formally apply safety or security policies around its use</description>
      <pubDate>Tue, 05 May 2026 11:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-adoption-outpaces-safety-policy/</guid>
    </item>
    <item>
      <title>NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave”</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-warns-aifuelled-vulnerability/</link>
      <description>The UK's National Cyber Security Centre is urging organizations to prepare for glut of new software updates</description>
      <pubDate>Tue, 05 May 2026 09:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-warns-aifuelled-vulnerability/</guid>
    </item>
    <item>
      <title>Trellix Reveals Unauthorized Access to Source Code</title>
      <link>https://www.infosecurity-magazine.com/news/trellix-reveals-unauthorized/</link>
      <description>Security vendor Trellix has suffered a breach involving unauthorized access</description>
      <pubDate>Tue, 05 May 2026 08:55:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trellix-reveals-unauthorized/</guid>
    </item>
    <item>
      <title>Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says</title>
      <link>https://www.infosecurity-magazine.com/news/small-defense-firms-lack-network/</link>
      <description>Team Cymru’s Stephen Campbell warned that small US defense contractors are not well prepared to face cyber intrusions through edge devices</description>
      <pubDate>Mon, 04 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/small-defense-firms-lack-network/</guid>
    </item>
    <item>
      <title>OpenAI To Extend Cyber Program to Government Agencies</title>
      <link>https://www.infosecurity-magazine.com/news/openai-extend-cyber-program/</link>
      <description>OpenAI announced its intention to expand the Trusted Access for Cyber program for cyber defenders at the federal, state and local government levels</description>
      <pubDate>Mon, 04 May 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/openai-extend-cyber-program/</guid>
    </item>
    <item>
      <title>Anthropic Rolls Out Claude Security for AI Vulnerability Scanning</title>
      <link>https://www.infosecurity-magazine.com/news/anthropic-claude-security-for-ai/</link>
      <description>Claude Security enters public beta, giving enterprises AI driven code scanning with no API integration or custom agents required</description>
      <pubDate>Fri, 01 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/anthropic-claude-security-for-ai/</guid>
    </item>
    <item>
      <title>Two American Cybersecurity Workers Jailed for BlackCat Ransomware Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/cybersecurity-workers-jailed/</link>
      <description>The cybersecurity workers used their knowledge and skills to conduct ransomware attacks for notorious gang, rather than protect victims against them</description>
      <pubDate>Fri, 01 May 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybersecurity-workers-jailed/</guid>
    </item>
    <item>
      <title>Nine-Year-Old Zero-Day Flaw in Linux Kernel Discovered by AI-Equipped Security Researcher</title>
      <link>https://www.infosecurity-magazine.com/news/zero-day-2017-linux-kernel/</link>
      <description>A researcher from offensive security firm Theori has found a nine-year-old flaw in the Linux kernel with the help of AI</description>
      <pubDate>Fri, 01 May 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zero-day-2017-linux-kernel/</guid>
    </item>
    <item>
      <title>Three Arrested for Hacking Over 610,000 Roblox Accounts</title>
      <link>https://www.infosecurity-magazine.com/news/three-arrested-over-roblox-hacking/</link>
      <description>Suspects accused of distributing malware and selling access to stolen Roblox accounts on Russian marketplaces</description>
      <pubDate>Thu, 30 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/three-arrested-over-roblox-hacking/</guid>
    </item>
    <item>
      <title>Deep#Door Python Backdoor Evades Detection On Windows</title>
      <link>https://www.infosecurity-magazine.com/news/deepdoor-python-backdoor-windows/</link>
      <description>Deep#Door Python RAT uses tunneling and obfuscation to evade detection and steal credentials</description>
      <pubDate>Thu, 30 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/deepdoor-python-backdoor-windows/</guid>
    </item>
    <item>
      <title>CISA and Partners Publish Zero Trust Guidance For OT Security</title>
      <link>https://www.infosecurity-magazine.com/news/zero-trust-guidance-operational/</link>
      <description>A new CISA‑led guide explains how zero‑trust security can be applied to operational technology, balancing cyber defence with safety and system availability</description>
      <pubDate>Thu, 30 Apr 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zero-trust-guidance-operational/</guid>
    </item>
    <item>
      <title>UK: Education Sector Faces Surge in Cyber Breaches Despite Stable National Threat Levels</title>
      <link>https://www.infosecurity-magazine.com/news/uk-education-sector-faces-surge-in/</link>
      <description>The British public education sector has faced the nation’s most dramatic increase in cyber breach prevalence over the past year</description>
      <pubDate>Thu, 30 Apr 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-education-sector-faces-surge-in/</guid>
    </item>
    <item>
      <title>Europol Busts Albanian Scam Call Centers in Major Online Fraud Case</title>
      <link>https://www.infosecurity-magazine.com/news/europol-albanian-scam-call-centers/</link>
      <description>European police arrested 10 suspects after dismantling Albanian scam call centers linked to a €50m ($58m) online investment fraud operation</description>
      <pubDate>Thu, 30 Apr 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/europol-albanian-scam-call-centers/</guid>
    </item>
    <item>
      <title>Cyber is the Number One Global “People Risk,” Says Marsh</title>
      <link>https://www.infosecurity-magazine.com/news/cyber-number-one-global-people/</link>
      <description>Marsh’s 2026 People Risks survey finds cyber‑related challenges dominate, as cyber‑threat literacy tops risks and cyber and AI skills shortages rise</description>
      <pubDate>Thu, 30 Apr 2026 09:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-number-one-global-people/</guid>
    </item>
    <item>
      <title>Cursor Extension Flaw Exposes Developer API Keys</title>
      <link>https://www.infosecurity-magazine.com/news/cursor-extension-flaw-exposes-api/</link>
      <description>Cursor flaw lets extensions steal API keys and session tokens without user interaction, according to researchers at LayerX</description>
      <pubDate>Wed, 29 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cursor-extension-flaw-exposes-api/</guid>
    </item>
    <item>
      <title>Malicious npm Dependency Linked to AI Assisted Commit Targets Crypto Wallets</title>
      <link>https://www.infosecurity-magazine.com/news/ai-npm-dependency-targets-crypto/</link>
      <description>Researchers uncover a malicious npm dependency linked to an AI‑assisted code commit that steals sensitive data and exposes crypto wallets</description>
      <pubDate>Wed, 29 Apr 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-npm-dependency-targets-crypto/</guid>
    </item>
    <item>
      <title>Researchers Track 2.9 Billion Compromised Credentials </title>
      <link>https://www.infosecurity-magazine.com/news/29-billion-compromised-credentials/</link>
      <description>KELA claims infostealers remained the primary access vector for attacks in 2025</description>
      <pubDate>Wed, 29 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/29-billion-compromised-credentials/</guid>
    </item>
    <item>
      <title>Critical Flaw Turns Vect Ransomware into Data Destroying Wiper</title>
      <link>https://www.infosecurity-magazine.com/news/critical-flaw-vect-ransomware-data/</link>
      <description>The Vect 2.0 ransomware wipes large files instead of merely encrypting them, making recovery impossible – even for the attackers</description>
      <pubDate>Wed, 29 Apr 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/critical-flaw-vect-ransomware-data/</guid>
    </item>
    <item>
      <title>A Quarter of Healthcare Organizations Report Medical Device Cyber-Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/quarter-healthcare-medical-device/</link>
      <description>RunSafe report reveals most attacks on medical devices disrupt patient care</description>
      <pubDate>Wed, 29 Apr 2026 10:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/quarter-healthcare-medical-device/</guid>
    </item>
    <item>
      <title>Medtronic Confirms Data Breach After ShinyHunters Claims</title>
      <link>https://www.infosecurity-magazine.com/news/medtronic-data-breach-shinyhunters/</link>
      <description>Medtronic confirms IT breach as ShinyHunters claims millions of records accesseda</description>
      <pubDate>Tue, 28 Apr 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/medtronic-data-breach-shinyhunters/</guid>
    </item>
    <item>
      <title>Ransomware Turf War as 0APT and KryBit Groups Trade Blows</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-turf-war-0apt-krybit/</link>
      <description>Ransomware groups 0APT and KryBit have doxxed each other online </description>
      <pubDate>Tue, 28 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-turf-war-0apt-krybit/</guid>
    </item>
    <item>
      <title>Chinese National Extradited Over Silk Typhoon Cyber Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/chinese-national-extradited-silk/</link>
      <description>Extradition links alleged MSS-directed hacker to  Silk Typhoon and COVID-19 espionage</description>
      <pubDate>Tue, 28 Apr 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-national-extradited-silk/</guid>
    </item>
    <item>
      <title>No Metrics Are Better Than Bad Metrics in the SOC, Says NCSC</title>
      <link>https://www.infosecurity-magazine.com/news/no-metrics-better-bad-metrics-soc/</link>
      <description>The National Cyber Security Centre has warned against measuring SOCs with ticket-based metrics</description>
      <pubDate>Tue, 28 Apr 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/no-metrics-better-bad-metrics-soc/</guid>
    </item>
    <item>
      <title>North Korean Hackers Target Crypto Firms with ClickFix and AI-Made Zoom Lures</title>
      <link>https://www.infosecurity-magazine.com/news/bluenoroff-dprk-hackers-target/</link>
      <description>Arctic Wolf attributed this large-scale spear-phishing campaign to BlueNoroff, a financially motivated subgroup of the Lazarus Group</description>
      <pubDate>Tue, 28 Apr 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/bluenoroff-dprk-hackers-target/</guid>
    </item>
    <item>
      <title>US Sanctions Target Cambodian Scam Network Leaders</title>
      <link>https://www.infosecurity-magazine.com/news/us-sanctions-cambodian-scam-network/</link>
      <description>US sanctions target Cambodian scam networks tied to crypto fraud and trafficking</description>
      <pubDate>Mon, 27 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-sanctions-cambodian-scam-network/</guid>
    </item>
    <item>
      <title>Utilities Tech Supplier Itron Discloses Cyber-Attack, Operations Unaffected</title>
      <link>https://www.infosecurity-magazine.com/news/utilities-tech-supplier-itron/</link>
      <description>Itron confirmed a cyber incident but does not believe it is likely to have a material impact on the company</description>
      <pubDate>Mon, 27 Apr 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/utilities-tech-supplier-itron/</guid>
    </item>
    <item>
      <title>Widely Used Browser Extensions Selling User Data</title>
      <link>https://www.infosecurity-magazine.com/news/browser-extensions-sell-user-data/</link>
      <description>Dozens of browser extensions openly sell user data via privacy policy disclosures</description>
      <pubDate>Mon, 27 Apr 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/browser-extensions-sell-user-data/</guid>
    </item>
    <item>
      <title>Most Cybersecurity  Professionals Feel Undervalued and Underpaid</title>
      <link>https://www.infosecurity-magazine.com/news/cybersecurity-pros-feel/</link>
      <description>A new report by global technology recruitment firm, Harvey Nash, found that three quarters of cybersecurity staff are pessimistic on pay and half are looking for a new job</description>
      <pubDate>Mon, 27 Apr 2026 11:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybersecurity-pros-feel/</guid>
    </item>
    <item>
      <title>Researchers Identify Fast16 Sabotage Malware That Pre-Dates Stuxnet</title>
      <link>https://www.infosecurity-magazine.com/news/fast16-sabotage-malware-winds/</link>
      <description>The “fast16” malware may have been used to target Iran’s nuclear program prior to Stuxnet</description>
      <pubDate>Mon, 27 Apr 2026 09:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fast16-sabotage-malware-winds/</guid>
    </item>
    <item>
      <title>BlackFile Group Targets Retail and Hospitality with Vishing Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/blackfile-group-targets-retail/</link>
      <description>Researchers uncover a new data theft and extortion group dubbed “BlackFile”</description>
      <pubDate>Mon, 27 Apr 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/blackfile-group-targets-retail/</guid>
    </item>
    <item>
      <title>UK Biobank Data Breach: Health Data of 500,000 Listed for Sale in China</title>
      <link>https://www.infosecurity-magazine.com/news/uk-biobank-data-beach-health-data/</link>
      <description>UK government Minister confirms that breached health records of UK Biobank volunteers were up for sale on Chinese ecommerce platforms before being removed</description>
      <pubDate>Fri, 24 Apr 2026 13:25:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-biobank-data-beach-health-data/</guid>
    </item>
    <item>
      <title>AI Rush is Reviving Old Cybersecurity Mistakes, Mandiant VP Warns</title>
      <link>https://www.infosecurity-magazine.com/news/ai-old-cybersecurity-mistakes/</link>
      <description>AI tools are not just creating new vulnerabilities, they are reviving old security failures, warned Jurgen Kutscher, VP of Mandiant Consulting</description>
      <pubDate>Fri, 24 Apr 2026 12:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-old-cybersecurity-mistakes/</guid>
    </item>
    <item>
      <title>Npm Supply Chain Malware Attack Targets Developers With Worm-Like Propagation</title>
      <link>https://www.infosecurity-magazine.com/news/npm-supply-chain-worm-canister/</link>
      <description>Malicious npm packages spread via worm-like propagation and steal developer credentials</description>
      <pubDate>Fri, 24 Apr 2026 08:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/npm-supply-chain-worm-canister/</guid>
    </item>
    <item>
      <title> Google Favors General-Purpose Gemini Models Over Cybersecurity‑Specific AI</title>
      <link>https://www.infosecurity-magazine.com/news/google-gemini-over-cyber-specific/</link>
      <description>Google Cloud’s COO advocated for combining general-purpose frontier large language models with task-specific AI agents </description>
      <pubDate>Thu, 23 Apr 2026 16:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-gemini-over-cyber-specific/</guid>
    </item>
    <item>
      <title>Apple Fixes iOS Notification Bug Exposing Deleted Messages</title>
      <link>https://www.infosecurity-magazine.com/news/apple-ios-notification-bug-deleted/</link>
      <description>Apple patches iOS flaw that retained deleted notifications, exposing message data</description>
      <pubDate>Thu, 23 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apple-ios-notification-bug-deleted/</guid>
    </item>
    <item>
      <title>Google Introduces Unique AI Agent Identities in New Gemini Enterprise Platform</title>
      <link>https://www.infosecurity-magazine.com/news/google-ai-agent-identities-gemini/</link>
      <description>Google Cloud will attribute a unique cryptographic ID every AI agent that will be tied to “traceable and auditable” authorization policies</description>
      <pubDate>Thu, 23 Apr 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-ai-agent-identities-gemini/</guid>
    </item>
    <item>
      <title>Cyber-Attacks Surge 63% Annually in Education Sector </title>
      <link>https://www.infosecurity-magazine.com/news/cyberattacks-surge-63-annually/</link>
      <description>Quorum Cyber report finds higher and further education institutions experienced 63% increase in attacks over a year</description>
      <pubDate>Thu, 23 Apr 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyberattacks-surge-63-annually/</guid>
    </item>
    <item>
      <title>Researchers Uncover 10 In-the-Wild Prompt Injection Payloads Targeting AI Agents</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-10-wild-indirect/</link>
      <description>Forcepoint has found 10 new indirect prompt injection attacks targeting AI agents</description>
      <pubDate>Thu, 23 Apr 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-10-wild-indirect/</guid>
    </item>
    <item>
      <title>NCSC Backs Passkeys, Hailing a New Era of Sign-in </title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-backs-passkeys-new-era-of/</link>
      <description>The UK’s NCSC has fully backed passkeys as consumers’ first choice for login, citing progress with FIDO and successful use across the NHS</description>
      <pubDate>Thu, 23 Apr 2026 08:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-backs-passkeys-new-era-of/</guid>
    </item>
    <item>
      <title>MacOS Native Tools Enable Stealthy Enterprise Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/macos-lotl-techniques-enterprise/</link>
      <description>macOS LOTL techniques bypass detection using native tools and metadata abuse</description>
      <pubDate>Wed, 22 Apr 2026 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/macos-lotl-techniques-enterprise/</guid>
    </item>
    <item>
      <title>NCSC Unveils SilentGlass, a Plug-In Device to Protect Monitors from Cyber-Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-silentglass-a-plugin-stop/</link>
      <description>The UK’s cybersecurity agency said the devices will be available for purchase by organizations around the world</description>
      <pubDate>Wed, 22 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-silentglass-a-plugin-stop/</guid>
    </item>
    <item>
      <title>UK Commits £90m for Cybersecurity and Pushes for ‘Resilience Pledge’</title>
      <link>https://www.infosecurity-magazine.com/news/uk-pledges-90m-for-cybersecurity/</link>
      <description>UK unveils £90m cybersecurity funding at CYBERUK to boost SME resilience, promote Cyber Essentials and a new Cyber Resilience Pledge, sparking industry debate</description>
      <pubDate>Wed, 22 Apr 2026 14:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-pledges-90m-for-cybersecurity/</guid>
    </item>
    <item>
      <title>Surge in Silent Subject Phishing Attacks Targets VIP Users</title>
      <link>https://www.infosecurity-magazine.com/news/silent-subject-phishing-campaigns/</link>
      <description>Null subject phishing campaigns bypass filters and target VIPs with QR code and RMM abuse</description>
      <pubDate>Wed, 22 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/silent-subject-phishing-campaigns/</guid>
    </item>
    <item>
      <title>Former Ransomware Negotiator Pleads Guilty to Working For BlackCat Cyber Gang</title>
      <link>https://www.infosecurity-magazine.com/news/former-ransomware-negotiator/</link>
      <description>A former ransomware negotiator has pleaded guilty to abusing his position by working with noted cybercrime group BlackCat</description>
      <pubDate>Wed, 22 Apr 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/former-ransomware-negotiator/</guid>
    </item>
    <item>
      <title>Researchers Uncover ProxySmart Software Powering 90+ SIM Farms</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-proxysmart-software-90/</link>
      <description>Infrawatch says ProxySmart platform enables SIM farm activity at “industrial scale”</description>
      <pubDate>Wed, 22 Apr 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-proxysmart-software-90/</guid>
    </item>
    <item>
      <title>UK Faces a Cyber ‘Perfect Storm’ Driven by Tech Advances and Nation State Threats, NCSC Warns</title>
      <link>https://www.infosecurity-magazine.com/news/uk-faces-a-cyber-perfect-storm-ncsc/</link>
      <description>The convergence of global tensions and rapid technological change is driving a new era of cyber risk, the NCSC warns</description>
      <pubDate>Wed, 22 Apr 2026 08:07:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-faces-a-cyber-perfect-storm-ncsc/</guid>
    </item>
    <item>
      <title>Trojanized Android App Fuels New Wave of NFC Fraud</title>
      <link>https://www.infosecurity-magazine.com/news/trojanized-android-handle-nfc/</link>
      <description>NGate malware abuses HandyPay app to steal NFC card data and PINs in Brazil</description>
      <pubDate>Tue, 21 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trojanized-android-handle-nfc/</guid>
    </item>
    <item>
      <title>The Gentlemen Ransomware Expands With Rapid Affiliate Growth</title>
      <link>https://www.infosecurity-magazine.com/news/gentlemen-ransomware-rapid/</link>
      <description>Gentlemen RaaS expands quickly with multi-platform attacks and SystemBC-linked infections</description>
      <pubDate>Tue, 21 Apr 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gentlemen-ransomware-rapid/</guid>
    </item>
    <item>
      <title>Unchecked AI Agents Cause Cybersecurity Incidents at Two Thirds of Firms </title>
      <link>https://www.infosecurity-magazine.com/news/unchecked-ai-agents-cause/</link>
      <description>Data exposure, operational disruption and financial losses among issues faced by businesses struggling with the rapid rise of AI agents, warns Cloud Security Alliance report </description>
      <pubDate>Tue, 21 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/unchecked-ai-agents-cause/</guid>
    </item>
    <item>
      <title>Vercel Confirms Cyber Incident After Sophisticated Attacker Exploits Third‑Party Tool</title>
      <link>https://www.infosecurity-magazine.com/news/vercel-cyber-incident-threat-actor/</link>
      <description>Cloud app developer Vercel appears to have suffered a security breach</description>
      <pubDate>Tue, 21 Apr 2026 09:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/vercel-cyber-incident-threat-actor/</guid>
    </item>
    <item>
      <title>North Korea Blamed for $290m KelpDAO Crypto Heist </title>
      <link>https://www.infosecurity-magazine.com/news/north-korean-blamed-290m-kelpdao/</link>
      <description>North Korea’s Lazarus Group is pegged for a $290m crypto theft at KelpDAO</description>
      <pubDate>Tue, 21 Apr 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/north-korean-blamed-290m-kelpdao/</guid>
    </item>
    <item>
      <title>ZionSiphon Malware Targets Water Infrastructure Systems</title>
      <link>https://www.infosecurity-magazine.com/news/zionsiphon-malware-water/</link>
      <description>ZionSiphon malware targets OT water systems with sabotage and ICS scanning capabilities</description>
      <pubDate>Mon, 20 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zionsiphon-malware-water/</guid>
    </item>
    <item>
      <title>Formbook Malware Campaign Uses Multiple Obfuscation Techniques to Avoid Detection</title>
      <link>https://www.infosecurity-magazine.com/news/formbook-malware-multiple/</link>
      <description>Formbook attacks use combination of DLL Side-Loading and Obfuscated JavaScript to stay hidden, researchers at WatchGuard have uncovered</description>
      <pubDate>Mon, 20 Apr 2026 15:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/formbook-malware-multiple/</guid>
    </item>
    <item>
      <title>Attackers Exploit DVR Command Injection Flaw to Deploy  Mirai-Based Botnet</title>
      <link>https://www.infosecurity-magazine.com/news/mirai-variant-dvr-flaw-iot-botnet/</link>
      <description>FortiGuard Labs has identified a Mirai-based Nexcorium campaign actively exploiting CVE-2024-3721 in TBK DVR devices</description>
      <pubDate>Mon, 20 Apr 2026 13:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mirai-variant-dvr-flaw-iot-botnet/</guid>
    </item>
    <item>
      <title>NCSC Outlines Coordinated Plan to Boost NHS Cyber Resilience</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-plan-boost-nhs-cyber/</link>
      <description>The National Cyber Security Centre has shared an update of its resilience-building efforts for the NHS</description>
      <pubDate>Mon, 20 Apr 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-plan-boost-nhs-cyber/</guid>
    </item>
    <item>
      <title>Crypto Exchange Grinex Blames Western Spies for $13m Theft</title>
      <link>https://www.infosecurity-magazine.com/news/crypto-exchange-grinex-western/</link>
      <description>Russian crypto-exchange Grinex claims Western intelligence agencies were behind a $13m heist</description>
      <pubDate>Mon, 20 Apr 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/crypto-exchange-grinex-western/</guid>
    </item>
    <item>
      <title>Commercial AI Models Show Rapid Gains in Vulnerability Research </title>
      <link>https://www.infosecurity-magazine.com/news/ai-models-rapid-gains/</link>
      <description>AI models are making rapid gains in vulnerability research and exploit development, raising new cybersecurity risks, a Forescout study finds</description>
      <pubDate>Fri, 17 Apr 2026 13:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-models-rapid-gains/</guid>
    </item>
    <item>
      <title>DDoS-For-Hire Services Disrupted by International Police Action in ‘Operation PowerOff’</title>
      <link>https://www.infosecurity-magazine.com/news/ddos-services-hit-by-police/</link>
      <description>Coordinated action by FBI, Europol and others seizes infrastructure, makes arrests – and sends warning letters to known DDoS service users</description>
      <pubDate>Fri, 17 Apr 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ddos-services-hit-by-police/</guid>
    </item>
    <item>
      <title>US Nationals Jailed for Operating Fake Remote Worker Laptop Farms for North Korea</title>
      <link>https://www.infosecurity-magazine.com/news/us-nationals-jailed-north-korea/</link>
      <description>US authorities jail two Americans for aiding North Korean laptop farm scams that infiltrated over 100 firms</description>
      <pubDate>Thu, 16 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-nationals-jailed-north-korea/</guid>
    </item>
    <item>
      <title>APK Malformation Found in Thousands of Android Malware Samples</title>
      <link>https://www.infosecurity-magazine.com/news/apk-malformation-android-malware/</link>
      <description>APK malformation tactic now appears in over 3000 Android malware samples evading static analysis</description>
      <pubDate>Thu, 16 Apr 2026 15:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apk-malformation-android-malware/</guid>
    </item>
    <item>
      <title>Cookeville Medical Center Notifies Patients After July 2025 Ransomware Attack</title>
      <link>https://www.infosecurity-magazine.com/news/cookeville-medical-center-data/</link>
      <description>Tennessee's CRMC notifies over 337,000 patients of Rhysida ransomware breach exposing sensitive data</description>
      <pubDate>Thu, 16 Apr 2026 15:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cookeville-medical-center-data/</guid>
    </item>
    <item>
      <title>NIST Drops NVD Enrichment for Pre-March 2026 Vulnerabilities</title>
      <link>https://www.infosecurity-magazine.com/news/nvd-enrichment-premarch-2026/</link>
      <description>NIST’s National Vulnerability Database will now prioritize enriching new and exploited flaws to address the record growth of reported CVEs</description>
      <pubDate>Thu, 16 Apr 2026 12:43:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nvd-enrichment-premarch-2026/</guid>
    </item>
    <item>
      <title>Systemic Flaw in MCP Protocol Could Expose 150 Million Downloads</title>
      <link>https://www.infosecurity-magazine.com/news/systemic-flaw-mcp-expose-150/</link>
      <description>Ox Security claims as many as 200,000 servers are exposed by newly discovered MCP vulnerability </description>
      <pubDate>Thu, 16 Apr 2026 09:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/systemic-flaw-mcp-expose-150/</guid>
    </item>
    <item>
      <title>Automotive Ransomware Attacks Double in a Year</title>
      <link>https://www.infosecurity-magazine.com/news/automotive-ransomware-attacks/</link>
      <description>Halcyon says ransomware now accounts for more than two-fifths of cyber-attacks targeting carmakers</description>
      <pubDate>Thu, 16 Apr 2026 08:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/automotive-ransomware-attacks/</guid>
    </item>
    <item>
      <title>OpenAI Unveils GPT-5.4-Cyber for Improving Cyber Defense With AI</title>
      <link>https://www.infosecurity-magazine.com/news/openai-unveils-gpt-54-cyber-defense/</link>
      <description>OpenAI’s new frontier model focused on cybersecurity comes following Anthropic’s launch of Claude Mythos Preview and Project Glasswing </description>
      <pubDate>Wed, 15 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/openai-unveils-gpt-54-cyber-defense/</guid>
    </item>
    <item>
      <title>European Cybersecurity Agency ENISA Seeks Top-Tier Status in CVE Program</title>
      <link>https://www.infosecurity-magazine.com/news/enisa-europe-seeks-top-level-root/</link>
      <description>The EU cybersecurity agency looks to become the third Top-Level Root CVE Numbering Authority, alongside CISA and MITRE</description>
      <pubDate>Wed, 15 Apr 2026 15:31:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/enisa-europe-seeks-top-level-root/</guid>
    </item>
    <item>
      <title>Signed Adware Operation Disables Antivirus Across 23,000 Hosts</title>
      <link>https://www.infosecurity-magazine.com/news/dragon-boss-adware-disables/</link>
      <description>Huntress uncovers adware deploying AV-killing payloads via signed updates across 23,000 endpoints</description>
      <pubDate>Wed, 15 Apr 2026 14:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/dragon-boss-adware-disables/</guid>
    </item>
    <item>
      <title>Critical Nginx-ui MCP Flaw Actively Exploited in the Wild</title>
      <link>https://www.infosecurity-magazine.com/news/nginx-ui-mcp-flaw-actively/</link>
      <description>Critical nginx-ui MCP authentication bypass CVE-2026-33032 actively exploited with CVSS 9.8</description>
      <pubDate>Wed, 15 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nginx-ui-mcp-flaw-actively/</guid>
    </item>
    <item>
      <title>AI Companies to Play Bigger Role in CVE Program, Says CISA</title>
      <link>https://www.infosecurity-magazine.com/news/ai-companies-to-play-bigger-role/</link>
      <description>At VulnCon, Lindsey Cerkovnik, head of vulnerability management at CISA, said AI companies should play a bigger role in vulnerability disclosures in the future</description>
      <pubDate>Wed, 15 Apr 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-companies-to-play-bigger-role/</guid>
    </item>
    <item>
      <title>Researchers Spot Surge in Brute-Force Attacks from Middle East</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-surge-bruteforce/</link>
      <description>Barracuda says 88% of brute-force attempts in Q1 were from the region</description>
      <pubDate>Wed, 15 Apr 2026 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-surge-bruteforce/</guid>
    </item>
    <item>
      <title>Microsoft Fixes Two Zero-Days in April Patch Tuesday</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-two-zerodays-april-patch/</link>
      <description>Microsoft has patched two zero-day flaws and over 160 others</description>
      <pubDate>Wed, 15 Apr 2026 09:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-two-zerodays-april-patch/</guid>
    </item>
    <item>
      <title>CISOs Urged to Innovate with Talent Retention as Job Satisfaction Declines</title>
      <link>https://www.infosecurity-magazine.com/news/cisos-innovate-talent-retention/</link>
      <description>A new IANS report claims just 34% of cybersecurity professionals plan to stay put in the next 12 months</description>
      <pubDate>Tue, 14 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisos-innovate-talent-retention/</guid>
    </item>
    <item>
      <title>Triad Nexus Expands Global Fraud Operations Despite US Sanctions</title>
      <link>https://www.infosecurity-magazine.com/news/triad-nexus-expands-fraud/</link>
      <description>Triad Nexus scales $200m scams, uses infrastructure laundering, localized fraud and US-access blocks</description>
      <pubDate>Tue, 14 Apr 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/triad-nexus-expands-fraud/</guid>
    </item>
    <item>
      <title>Malicious Chrome Extensions Campaign Exposes User Data</title>
      <link>https://www.infosecurity-magazine.com/news/chrome-extensions-expose-user-data/</link>
      <description>108 malicious Chrome extensions steal sessions, Google data, inject ads via single C2 infrastructure</description>
      <pubDate>Tue, 14 Apr 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chrome-extensions-expose-user-data/</guid>
    </item>
    <item>
      <title>AI Security Institute Advocates Security Best Practices After Mythos Test</title>
      <link>https://www.infosecurity-magazine.com/news/ai-security-institute-best/</link>
      <description>The AISI has issued its judgement on Anthropic’s Mythos Preview model</description>
      <pubDate>Tue, 14 Apr 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-security-institute-best/</guid>
    </item>
    <item>
      <title>Mailbox Rule Abuse Emerges as Stealthy Post-Compromise Threat</title>
      <link>https://www.infosecurity-magazine.com/news/mailbox-rule-abuse-stealthy-post/</link>
      <description>Attackers are abusing Microsoft 365 mailbox rules to hide activity, exfiltrate data and retain access after account compromise, researchers warn</description>
      <pubDate>Mon, 13 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mailbox-rule-abuse-stealthy-post/</guid>
    </item>
    <item>
      <title>Mirax Android Trojan Turns Devices Into Residential Proxy Nodes</title>
      <link>https://www.infosecurity-magazine.com/news/mirax-trojan-devices-proxy-nodes/</link>
      <description>Security researchers warn of Mirax, an emerging Android banking trojan using MaaS, remote access and residential proxies to target European users</description>
      <pubDate>Mon, 13 Apr 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mirax-trojan-devices-proxy-nodes/</guid>
    </item>
    <item>
      <title>FBI Dismantles $20m Phishing Operation W3LL</title>
      <link>https://www.infosecurity-magazine.com/news/fbi-dismantles-phishing-operation/</link>
      <description>The W3LL phishing kit has been associated with fraud attempts totaling $20m</description>
      <pubDate>Mon, 13 Apr 2026 10:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fbi-dismantles-phishing-operation/</guid>
    </item>
    <item>
      <title>UK Cyber Security Council Launches Associate Cyber Security Professional Title</title>
      <link>https://www.infosecurity-magazine.com/news/associate-cyber-professional-title/</link>
      <description>The UK Cyber Security Council has unveiled a new Associate Cyber Security Professional title aimed at supporting early‑career cybersecurity professionals</description>
      <pubDate>Mon, 13 Apr 2026 09:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/associate-cyber-professional-title/</guid>
    </item>
    <item>
      <title>Operation Atlantic Seizes $12m in Crypto Losses</title>
      <link>https://www.infosecurity-magazine.com/news/operation-atlantic-seizes-12m/</link>
      <description>UK, US and Canadian authorities have identified over 20,000 victims of approval phishing scams that trick users into handing over full crypto wallet access</description>
      <pubDate>Mon, 13 Apr 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/operation-atlantic-seizes-12m/</guid>
    </item>
    <item>
      <title>Just Three Ransomware Gangs Accounted for 40% of Attacks Last Month</title>
      <link>https://www.infosecurity-magazine.com/news/three-ransomware-gangs-40-percent/</link>
      <description>Qilin, Akira and Dragonforce were responsible for 40% of 672 ransomware incidents reported in March, says Check Point</description>
      <pubDate>Fri, 10 Apr 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/three-ransomware-gangs-40-percent/</guid>
    </item>
    <item>
      <title>Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies</title>
      <link>https://www.infosecurity-magazine.com/news/google-chrome-protection/</link>
      <description>Chrome’s Device Bound Session Credentials is designed to block infostealers from harvesting session cookie</description>
      <pubDate>Fri, 10 Apr 2026 11:25:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-chrome-protection/</guid>
    </item>
    <item>
      <title>STX RAT Targets Finance Sector With Advanced Stealth Tactics</title>
      <link>https://www.infosecurity-magazine.com/news/stx-rat-targets-finance-sector/</link>
      <description>STX RAT, a newly identified remote access trojan, attempted deployment in finance, showing advanced C2 and stealthy delivery methods</description>
      <pubDate>Thu, 09 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/stx-rat-targets-finance-sector/</guid>
    </item>
    <item>
      <title>Bitcoin Depot Reports $3.6m Crypto Theft After System Breach</title>
      <link>https://www.infosecurity-magazine.com/news/bitcoin-depot-dollar36m-crypto/</link>
      <description>Bitcoin Depot has disclosed a cyber-attack that led to the theft of more than 50 Bitcoin, worth $3.66m, after hackers accessed its internal systems</description>
      <pubDate>Thu, 09 Apr 2026 14:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/bitcoin-depot-dollar36m-crypto/</guid>
    </item>
    <item>
      <title>Atomic Stealer MacOS ClickFix Attack Bypasses Apple Security Warnings</title>
      <link>https://www.infosecurity-magazine.com/news/atomic-stealer-macos-clickfix/</link>
      <description>macOS 26.4 update introduced security warnings into Terminal to prevent ClickFix attacks, so attackers have shifted to Script Editor instead</description>
      <pubDate>Thu, 09 Apr 2026 11:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/atomic-stealer-macos-clickfix/</guid>
    </item>
    <item>
      <title>Middle East Hack-for-Hire Operation Traced to South Asian Cyber Espionage Group</title>
      <link>https://www.infosecurity-magazine.com/news/middle-east-hack-operation-bitter/</link>
      <description>A spear-phishing campaign which spread across the Middle East between 2023 and 2024 has now been linked to Bitter APT group</description>
      <pubDate>Thu, 09 Apr 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/middle-east-hack-operation-bitter/</guid>
    </item>
    <item>
      <title>Governance Gaps Emerge as AI Agents Drive 76% Increase in NHIs</title>
      <link>https://www.infosecurity-magazine.com/news/governance-gaps-agents-76-increase/</link>
      <description>SANS Institute reveals that AI agents are behind a 76% surge in non-human identities</description>
      <pubDate>Thu, 09 Apr 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/governance-gaps-agents-76-increase/</guid>
    </item>
    <item>
      <title>Google Warns of New Threat Group Targeting BPOs and Helpdesks</title>
      <link>https://www.infosecurity-magazine.com/news/google-warns-group-targeting-bpos/</link>
      <description>Google’s threat intel team warns UNC6783, a new extortion group possibly linked to the “Raccoon” persona, is targeting BPOs and enterprises</description>
      <pubDate>Thu, 09 Apr 2026 08:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-warns-group-targeting-bpos/</guid>
    </item>
    <item>
      <title>Google API Keys Quietly Gain Access to Gemini on Android Devices</title>
      <link>https://www.infosecurity-magazine.com/news/google-api-keys-access-gemini/</link>
      <description>Google API key flaw exposes mobile apps to Gemini AI access, private files and billing risks</description>
      <pubDate>Wed, 08 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-api-keys-access-gemini/</guid>
    </item>
    <item>
      <title>Critical Vulnerability in Ninja Forms Exposes WordPress Sites</title>
      <link>https://www.infosecurity-magazine.com/news/flaw-ninja-forms-wordpress/</link>
      <description>Ninja Forms File Upload RCE via unauthenticated arbitrary file upload; update to 3.3.27 immediately</description>
      <pubDate>Wed, 08 Apr 2026 15:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/flaw-ninja-forms-wordpress/</guid>
    </item>
    <item>
      <title>Anthropic Launches Project Glasswing to Use AI to Find and Fix Critical Software Vulnerabilities</title>
      <link>https://www.infosecurity-magazine.com/news/anthropic-launch-project-glasswing/</link>
      <description>Anthropic launches Project Glasswing, using its Claude Mythos Preview AI to autonomously identify and fix undiscovered vulnerabilities in critical software</description>
      <pubDate>Wed, 08 Apr 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/anthropic-launch-project-glasswing/</guid>
    </item>
    <item>
      <title>US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers</title>
      <link>https://www.infosecurity-magazine.com/news/us-thwarts-dns-hijacking-network/</link>
      <description>The FBI deployed a method to unplug US-based routers compromised by APT28 from the threat actor’s malicious network</description>
      <pubDate>Wed, 08 Apr 2026 10:03:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-thwarts-dns-hijacking-network/</guid>
    </item>
    <item>
      <title>Claude Discovers Apache ActiveMQ Bug Hidden for 13 Years</title>
      <link>https://www.infosecurity-magazine.com/news/claude-apache-activemq-bug-hidden/</link>
      <description>Anthropic’s Claude AI has helped researchers find a vulnerability in Apache ActiveMQ Classic</description>
      <pubDate>Wed, 08 Apr 2026 09:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/claude-apache-activemq-bug-hidden/</guid>
    </item>
    <item>
      <title>Iran‑Backed Threat Actors Hit US CNI Providers via Internet‑Facing OT Assets</title>
      <link>https://www.infosecurity-magazine.com/news/iranbacked-hackers-cni-ot-assets/</link>
      <description>CISA has revealed Iranian attacks causing disruption and financial loss at US critical infrastructure firms</description>
      <pubDate>Wed, 08 Apr 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iranbacked-hackers-cni-ot-assets/</guid>
    </item>
    <item>
      <title>Russian APT28 Hackers Hijack Routers to Steal Credentials, UK Security Agency Warns</title>
      <link>https://www.infosecurity-magazine.com/news/russia-apt28-hijack-routers-uk-ncsc/</link>
      <description>Newly identified malicious campaigns are linked to virtual private servers modified by APT28 to operate as malicious DNS servers</description>
      <pubDate>Tue, 07 Apr 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/russia-apt28-hijack-routers-uk-ncsc/</guid>
    </item>
    <item>
      <title>GPU Rowhammer Attack Enables Privilege Escalation and Full System Compromise</title>
      <link>https://www.infosecurity-magazine.com/news/gpu-based-rowhammer-attack/</link>
      <description>GPUBreach uses GPU Rowhammer on GDDR6 to flip bits, corrupt page tables and escalate to system root</description>
      <pubDate>Tue, 07 Apr 2026 15:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gpu-based-rowhammer-attack/</guid>
    </item>
    <item>
      <title>GrafanaGhost Exploit Bypasses AI Guardrails for Silent Data Exfiltration</title>
      <link>https://www.infosecurity-magazine.com/news/grafanaghost-silent-data/</link>
      <description>GrafanaGhost chains AI prompt injection and URL flaws to exfiltrate sensitive Grafana data</description>
      <pubDate>Tue, 07 Apr 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/grafanaghost-silent-data/</guid>
    </item>
    <item>
      <title>Over $17bn Lost to Cyber Fraud in the Last Year, Warns FBI</title>
      <link>https://www.infosecurity-magazine.com/news/17bn-lost-to-cyber-fraud-warns-fbi/</link>
      <description>Cryptocurrency scams alone cost victims over $7 billion, while AI-enabled fraud threats are on the rise, says FBI</description>
      <pubDate>Tue, 07 Apr 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/17bn-lost-to-cyber-fraud-warns-fbi/</guid>
    </item>
    <item>
      <title>Storm-1175 Exploits Flaws in High-Velocity Medusa Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/storm1175-medusa-attacks/</link>
      <description>Microsoft has released a new report about the Storm-1175 group and its connection to Medusa ransomware</description>
      <pubDate>Tue, 07 Apr 2026 10:02:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/storm1175-medusa-attacks/</guid>
    </item>
    <item>
      <title>Fortinet Releases Emergency Patch After FortiClient EMS Bug Is Exploited</title>
      <link>https://www.infosecurity-magazine.com/news/fortinet-emergency-patch-ems-bug/</link>
      <description>Fortinet has updated its FortiClient EMS product after zero-day attacks surfaced </description>
      <pubDate>Tue, 07 Apr 2026 09:26:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fortinet-emergency-patch-ems-bug/</guid>
    </item>
    <item>
      <title>New Phishing Platform Used in Credential Theft Campaigns Against C-Suite Execs</title>
      <link>https://www.infosecurity-magazine.com/news/new-phishing-platform-credential/</link>
      <description>A large-scale credential theft campaign targeting senior executives has been linked to a previously unknown automated phishing platform called Venom</description>
      <pubDate>Fri, 03 Apr 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/new-phishing-platform-credential/</guid>
    </item>
    <item>
      <title>New 'Storm' Infostealer Remotely Decrypts Stolen Credentials</title>
      <link>https://www.infosecurity-magazine.com/news/storm-infostealer-remotely/</link>
      <description>This modern infostealer adopted server-side decryption of stolen credentials to bypass security controls</description>
      <pubDate>Thu, 02 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/storm-infostealer-remotely/</guid>
    </item>
    <item>
      <title>NCSC Issues Security Alert Over Hackers Targeting WhatsApp and Signal Accounts</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-alert-hackers-whatsapp-signal/</link>
      <description>The UK’s cybersecurity agency offered advice to “high-risk’ individuals” on how to protect against social engineering and cyber-attacks</description>
      <pubDate>Thu, 02 Apr 2026 14:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-alert-hackers-whatsapp-signal/</guid>
    </item>
    <item>
      <title>Apple Expands iOS 18 Security Updates Amid DarkSword Threat</title>
      <link>https://www.infosecurity-magazine.com/news/apple-ios-18-updates-darksword/</link>
      <description>iOS/iPadOS 18.7.7 updates expanded to protect older devices from DarkSword web exploit kit</description>
      <pubDate>Thu, 02 Apr 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apple-ios-18-updates-darksword/</guid>
    </item>
    <item>
      <title>Researchers Observe Sub-One-Hour Ransomware Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-subonehour-ransomware/</link>
      <description>Halcyon says Akira is now capable of carrying out an entire ransomware attack in less than an hour</description>
      <pubDate>Thu, 02 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-subonehour-ransomware/</guid>
    </item>
    <item>
      <title>GitHub Used as Covert Channel in Multi-Stage Malware Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/github-covert-multi-stage-malware/</link>
      <description>LNK files use GitHub C2, embedded decoders and PowerShell for persistence and data exfiltration</description>
      <pubDate>Thu, 02 Apr 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/github-covert-multi-stage-malware/</guid>
    </item>
    <item>
      <title>Most CNI Firms Face Up to £5m in Downtime from OT Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/most-cni-firms-5m-downtime-ot/</link>
      <description>E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks</description>
      <pubDate>Thu, 02 Apr 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/most-cni-firms-5m-downtime-ot/</guid>
    </item>
    <item>
      <title>Google Introduces Android Dev Verification Amid Openness Debate</title>
      <link>https://www.infosecurity-magazine.com/news/google-android-dev-verification/</link>
      <description>Android requires dev identity verification for sideloaded apps; phased global rollout from September</description>
      <pubDate>Wed, 01 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-android-dev-verification/</guid>
    </item>
    <item>
      <title>New Venom Stealer MaaS Platform Automates Continuous Data Theft</title>
      <link>https://www.infosecurity-magazine.com/news/venom-stealer-maas-automates-data/</link>
      <description>Venom Stealer malware-as-a-service automates ClickFix social engineering, credential and crypto exfiltration</description>
      <pubDate>Wed, 01 Apr 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/venom-stealer-maas-automates-data/</guid>
    </item>
    <item>
      <title>Chinese Hackers Target European Governments in Espionage Campaigns</title>
      <link>https://www.infosecurity-magazine.com/news/china-hackers-ta416-europe/</link>
      <description>Chinese state-backed group TA416 had suspended its cyber espionage operations in Europe since 2023, noted Proofpoint</description>
      <pubDate>Wed, 01 Apr 2026 12:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/china-hackers-ta416-europe/</guid>
    </item>
    <item>
      <title>Eight in 10 UK Manufacturers Hit by Cyber Incident in a Year</title>
      <link>https://www.infosecurity-magazine.com/news/eight-10-uk-manufacturers-hit/</link>
      <description>Most UK manufacturers compromised last year suffered financial loss, says ESET</description>
      <pubDate>Wed, 01 Apr 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/eight-10-uk-manufacturers-hit/</guid>
    </item>
    <item>
      <title>Hackers Hijack Axios npm Package to Spread RATs</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-hijack-axios-npm-package/</link>
      <description>Threat actors hijacked the popular npm package axios to spread RAT malware after compromising an open‑source maintainer’s account, researchers warn</description>
      <pubDate>Wed, 01 Apr 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-hijack-axios-npm-package/</guid>
    </item>
    <item>
      <title>Maryland Man Charged Over $53m Uranium Finance Crypto Hack</title>
      <link>https://www.infosecurity-magazine.com/news/man-charged-uranium-crypto-hack/</link>
      <description>Maryland man accused of $53m Uranium Finance hack, exploited smart contract flaws, laundered funds</description>
      <pubDate>Tue, 31 Mar 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/man-charged-uranium-crypto-hack/</guid>
    </item>
    <item>
      <title>Phantom Project Bundles Infostealer, Crypter and RAT For Sale</title>
      <link>https://www.infosecurity-magazine.com/news/phantom-project-infostealer-nov-25/</link>
      <description>Phantom Stealer .NET harvests browser credentials, cookies, cards, sessions, as stealer-as-a-service</description>
      <pubDate>Tue, 31 Mar 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/phantom-project-infostealer-nov-25/</guid>
    </item>
    <item>
      <title>ChatGPT Security Issue Enabled Data Theft via Single Prompt</title>
      <link>https://www.infosecurity-magazine.com/news/chatgpt-security-issue-steal-data/</link>
      <description>OpenAI has patched vulnerability, which Check Point said was because of a DNS loophole
</description>
      <pubDate>Tue, 31 Mar 2026 13:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chatgpt-security-issue-steal-data/</guid>
    </item>
    <item>
      <title>TeamPCP Explores Ways to Exploit Stolen Supply Chain Secrets</title>
      <link>https://www.infosecurity-magazine.com/news/teampcp-exploit-stolen-supply/</link>
      <description>TeamPCP is exploring ways to monetize the secrets harvested during supply chain attacks, with identified ties to the Lapsus$ and Vect ransomware gangs</description>
      <pubDate>Tue, 31 Mar 2026 12:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/teampcp-exploit-stolen-supply/</guid>
    </item>
    <item>
      <title>Employee Data Breaches Surge to Seven-Year High</title>
      <link>https://www.infosecurity-magazine.com/news/employee-data-breaches-surge/</link>
      <description>Analysis from law firm Nockolds suggests non-cyber incidents are driving up employee data breaches</description>
      <pubDate>Tue, 31 Mar 2026 10:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/employee-data-breaches-surge/</guid>
    </item>
    <item>
      <title>NCSC Urges Immediate Patching of F5 BIG-IP Bug</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-urges-immediate-patching-f5/</link>
      <description>The National Cyber Security Centre wants UK firms to patch CVE-2025-53521</description>
      <pubDate>Tue, 31 Mar 2026 08:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-urges-immediate-patching-f5/</guid>
    </item>
    <item>
      <title>Cybercriminals Exploit Tax Season With New Phishing Tactics</title>
      <link>https://www.infosecurity-magazine.com/news/tax-season-new-phishing-tactics/</link>
      <description>Tax-season phishing floods deliver RMM malware, credential theft, BEC and tax-form scams</description>
      <pubDate>Mon, 30 Mar 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/tax-season-new-phishing-tactics/</guid>
    </item>
    <item>
      <title>Lloyds IT Glitch Exposed Data of Nearly 500,000 Banking Customers</title>
      <link>https://www.infosecurity-magazine.com/news/lloyds-glitch-exposed-500000/</link>
      <description>Lloyds app glitch exposed up to 447,936 customers’ transactions and personal data during update</description>
      <pubDate>Mon, 30 Mar 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/lloyds-glitch-exposed-500000/</guid>
    </item>
    <item>
      <title>DeepLoad Malware Combines ClickFix With AI-Generated Code to Avoid Detection</title>
      <link>https://www.infosecurity-magazine.com/news/deepload-malware-clickfix-ai-code/</link>
      <description>Researchers at ReliaQuest warn of persistent malware campaign targeting enterprise credentials</description>
      <pubDate>Mon, 30 Mar 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/deepload-malware-clickfix-ai-code/</guid>
    </item>
    <item>
      <title>Critical Citrix NetScaler Vulnerability Exploited in the Wild</title>
      <link>https://www.infosecurity-magazine.com/news/critical-citrix-netscaler/</link>
      <description>Researchers from watchTowr and Defused have found evidence that attackers are actively exploiting CVE-2026-3055, a critical NetScaler vulnerability</description>
      <pubDate>Mon, 30 Mar 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/critical-citrix-netscaler/</guid>
    </item>
    <item>
      <title>ICO Fines UK Nuisance Call Scammers £100,000</title>
      <link>https://www.infosecurity-magazine.com/news/ico-fines-uk-nuisance-call/</link>
      <description>The UK Information Commissioner’s Office has handed a £100,000 fine to Birmingham-based TMAC</description>
      <pubDate>Mon, 30 Mar 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ico-fines-uk-nuisance-call/</guid>
    </item>
    <item>
      <title>European Commission Confirms Cloud Data Breach</title>
      <link>https://www.infosecurity-magazine.com/news/european-commission-cloud-data/</link>
      <description>The European Commission has revealed details of a data breach impacting its AWS infrastructure</description>
      <pubDate>Mon, 30 Mar 2026 08:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/european-commission-cloud-data/</guid>
    </item>
  </channel>
</rss>